CVE-2022-49772
published 2025-05-01CVE-2022-49772: In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open() snd_usbmidi_output_open()…
PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.19%
8.8th percentile
In the Linux kernel, the following vulnerability has been resolved:
ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open()
snd_usbmidi_output_open() has a check of the NULL port with
snd_BUG_ON(). snd_BUG_ON() was used as this shouldn't have happened,
but in reality, the NULL port may be seen when the device gives an
invalid endpoint setup at the descriptor, hence the driver skips the
allocation. That is, the check itself is valid and snd_BUG_ON()
should be dropped from there. Otherwise it's confusing as if it were
a real bug, as recently syzbot stumbled on it.
Affected
20 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | linux | < linux 6.0.10-1 (bookworm) | linux 6.0.10-1 (bookworm) |
| linux | linux | — | — |
| linux | linux | >= 738d9edcfd44f154924692e54109fb439fcf8bdd < c43991065f36f7628cd124e037b8750c4617a7a7 | c43991065f36f7628cd124e037b8750c4617a7a7 |
| linux | linux | >= 738d9edcfd44f154924692e54109fb439fcf8bdd < e7dc436aea80308a9268e6d2d85f910ff107de9b | e7dc436aea80308a9268e6d2d85f910ff107de9b |
| linux | linux | >= 738d9edcfd44f154924692e54109fb439fcf8bdd < a80369c8ca50bc885d14386087a834659ec54a54 | a80369c8ca50bc885d14386087a834659ec54a54 |
| linux | linux | >= 738d9edcfd44f154924692e54109fb439fcf8bdd < 02b94885b2fdf1808b1874e009bfb90753f8f4db | 02b94885b2fdf1808b1874e009bfb90753f8f4db |
| linux | linux | >= 738d9edcfd44f154924692e54109fb439fcf8bdd < 00f5f1bbf815a39e9eecb468d12ca55d3360eb10 | 00f5f1bbf815a39e9eecb468d12ca55d3360eb10 |
| linux | linux | >= 738d9edcfd44f154924692e54109fb439fcf8bdd < ad72c3c3f6eb81d2cb189ec71e888316adada5df | ad72c3c3f6eb81d2cb189ec71e888316adada5df |
| linux | linux_kernel | < 4.9.334 | 4.9.334 |
| linux | linux_kernel | — | — |
| linux | linux_kernel | >= 0 < 5.10.158-1 | 5.10.158-1 |
| linux | linux_kernel | >= 0 < 6.0.10-1 | 6.0.10-1 |
| linux | linux_kernel | >= 0 < 6.0.10-1 | 6.0.10-1 |
| linux | linux_kernel | >= 0 < 6.0.10-1 | 6.0.10-1 |
| linux | linux_kernel | >= 4.10 < 4.14.300 | 4.14.300 |
| linux | linux_kernel | >= 4.15 < 4.19.267 | 4.19.267 |
| linux | linux_kernel | >= 4.20 < 5.4.225 | 5.4.225 |
| linux | linux_kernel | >= 5.11 < 5.15.80 | 5.15.80 |
| linux | linux_kernel | >= 5.16 < 6.0.10 | 6.0.10 |
| linux | linux_kernel | >= 5.5 < 5.10.156 | 5.10.156 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-x2w3-4grf-5r9f: In the Linux kernel, the following vulnerability has been resolved:
ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open()
snd_usbmidi_ou
ghsa_unreviewed·2025-05-01
CVE-2022-49772 [MEDIUM] GHSA-x2w3-4grf-5r9f: In the Linux kernel, the following vulnerability has been resolved:
ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open()
snd_usbmidi_ou
In the Linux kernel, the following vulnerability has been resolved:
ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open()
snd_usbmidi_output_open() has a check of the NULL port with
snd_BUG_ON(). snd_BUG_ON() was used as this shouldn't have happened,
but in reality, the NULL port may be seen when the device gives an
invalid endpoint setup at the descriptor, hence the driver skips the
allocation. That is, the check itself is valid and snd_BUG_ON()
should be dropped from there. Otherwise it's confusing as if it were
a real bug, as recently syzbot stumbled on it.
OSV
CVE-2022-49772: In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open() snd_usbmidi_outp
osv·2025-05-01·CVSS 5.5
CVE-2022-49772 [MEDIUM] CVE-2022-49772: In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open() snd_usbmidi_outp
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open() snd_usbmidi_output_open() has a check of the NULL port with snd_BUG_ON(). snd_BUG_ON() was used as this shouldn't have happened, but in reality, the NULL port may be seen when the device gives an invalid endpoint setup at the descriptor, hence the driver skips the allocation. That is, the check itself is valid and snd_BUG_ON() should be dropped from there. Otherwise it's confusing as if it were a real bug, as recently syzbot stumbled on it.
Red Hat
kernel: ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open()
vendor_redhat·2025-05-01·CVSS 5.5
CVE-2022-49772 [MEDIUM] kernel: ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open()
kernel: ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open()
In the Linux kernel, the following vulnerability has been resolved:
ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open()
snd_usbmidi_output_open() has a check of the NULL port with
snd_BUG_ON(). snd_BUG_ON() was used as this shouldn't have happened,
but in reality, the NULL port may be seen when the device gives an
invalid endpoint setup at the descriptor, hence the driver skips the
allocation. That is, the check itself is valid and snd_BUG_ON()
should be dropped from there. Otherwise it's confusing as if it were
a real bug, as recently syzbot stumbled on it.
Statement: The snd_usbmidi_output_open() function previously included a snd_BUG_ON() assertion for a NULL port pointer. However, such a condition
Debian
CVE-2022-49772: linux - In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-a...
vendor_debian·2022·CVSS 5.5
CVE-2022-49772 [MEDIUM] CVE-2022-49772: linux - In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-a...
In the Linux kernel, the following vulnerability has been resolved: ALSA: usb-audio: Drop snd_BUG_ON() from snd_usbmidi_output_open() snd_usbmidi_output_open() has a check of the NULL port with snd_BUG_ON(). snd_BUG_ON() was used as this shouldn't have happened, but in reality, the NULL port may be seen when the device gives an invalid endpoint setup at the descriptor, hence the driver skips the allocation. That is, the check itself is valid and snd_BUG_ON() should be dropped from there. Otherwise it's confusing as if it were a real bug, as recently syzbot stumbled on it.
Scope: local
bookworm: resolved (fixed in 6.0.10-1)
bullseye: resolved (fixed in 5.10.158-1)
forky: resolved (fixed in 6.0.10-1)
sid: resolved (fixed in 6.0.10-1)
trixie: resolved (fixed in 6.0.10-1)
No detection rules found.
No public exploits indexed.
https://git.kernel.org/stable/c/00f5f1bbf815a39e9eecb468d12ca55d3360eb10https://git.kernel.org/stable/c/02b94885b2fdf1808b1874e009bfb90753f8f4dbhttps://git.kernel.org/stable/c/a80369c8ca50bc885d14386087a834659ec54a54https://git.kernel.org/stable/c/ad72c3c3f6eb81d2cb189ec71e888316adada5dfhttps://git.kernel.org/stable/c/c43991065f36f7628cd124e037b8750c4617a7a7https://git.kernel.org/stable/c/e7dc436aea80308a9268e6d2d85f910ff107de9b
2025-05-01
Published